09.12.2012 Views

Understanding the network.pdf - Back to Home

Understanding the network.pdf - Back to Home

Understanding the network.pdf - Back to Home

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

http://www.pdc.kth.se/kth-krb/<br />

http://www.cybersafe.com/<br />

Using Old-Mode Au<strong>the</strong>ntication<br />

By default, <strong>the</strong> IOS uses AAA old-mode au<strong>the</strong>ntication. Under AAA<br />

old-mode, each dedicated and virtual line interface that requires<br />

au<strong>the</strong>ntication must be configured using <strong>the</strong> login command. Here is<br />

an example:<br />

local-AS#config t<br />

Enter configuration commands, one per line. End with CNTL/Z.<br />

local-AS(config)#line vty 0 4<br />

local-AS(config-line)#login ?<br />

local Local password checking<br />

tacacs Use tacacs server for password checking<br />

<br />

local-AS(config-line)#login local<br />

local-AS(config-line)#exit<br />

local-AS(config)^Z<br />

local-AS#<br />

In <strong>the</strong> example above, you set up old-mode au<strong>the</strong>ntication on <strong>the</strong> VT<br />

ports on <strong>the</strong> router. You now need <strong>to</strong> create user accounts for each<br />

user who requires VT access <strong>to</strong> <strong>the</strong> router. This is <strong>the</strong> same process<br />

you used <strong>to</strong> create user accounts for <strong>the</strong> WidgetCo dial-in solution:<br />

local-AS#config t<br />

Enter configuration commands, one per line. End with CNTL/Z.<br />

local-AS(config)#username admin password apassword<br />

local-AS(config)#^Z<br />

local-AS#<br />

After <strong>the</strong> username is created, you can log in <strong>to</strong> <strong>the</strong> router using<br />

old-mode au<strong>the</strong>ntication:

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!